At a Glance
- Tasks: Secure cloud infrastructure and applications on Google Cloud Platform.
- Company: Join a dynamic enterprise-scale environment focused on security transformation.
- Benefits: Enjoy a competitive rate of £660/day with hybrid working options.
- Why this job: Be part of a high-profile project that enhances cloud security and impacts the industry.
- Qualifications: Experience with GCP security, threat modelling, and DevSecOps principles required.
- Other info: CISSP certification is preferred; work 2-3 days onsite in London.
We are seeking a highly skilled GCP Security Engineer to join a high-profile security transformation programme within a dynamic, enterprise-scale environment. This role will be instrumental in securing cloud infrastructure, data, and applications on Google Cloud Platform.
You will work closely with architecture, DevOps, and engineering teams to embed robust security controls across the cloud estate. The ideal candidate will be a hands-on practitioner with experience in threat modelling, and a solid understanding of DevSecOps principles.
Key Responsibilities:- Design, implement, and maintain security controls across GCP services
- Lead threat modelling activities for new and existing workloads
- Collaborate with engineering teams to integrate security best practices into CI/CD pipelines
- Support audit and compliance initiatives across GCP environments
- Monitor and respond to security incidents and vulnerabilities in GCP
- Extensive hands-on experience with Google Cloud Platform (GCP) security services
- Threat modelling experience in cloud-native environments
- Strong knowledge of Google BigQuery, SQL, and data access governance
- CISSP certification (or equivalent experience in cloud security)
- Proven track record of working within DevSecOps frameworks and secure SDLC
- Comfortable working in a hybrid model with 2-3 days onsite in London
GCP Security Engineer employer: Norton Blake
Contact Detail:
Norton Blake Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land GCP Security Engineer
✨Tip Number 1
Familiarise yourself with the latest GCP security services and features. Being well-versed in tools like Google Cloud Armor, Identity-Aware Proxy, and Security Command Center will give you an edge during discussions with our team.
✨Tip Number 2
Brush up on your threat modelling skills, especially in cloud-native environments. Prepare to discuss specific scenarios where you've successfully identified and mitigated risks in previous projects.
✨Tip Number 3
Showcase your experience with DevSecOps practices. Be ready to explain how you've integrated security into CI/CD pipelines and the impact it had on project outcomes.
✨Tip Number 4
Network with professionals in the GCP security space. Engaging with communities or attending relevant meetups can provide insights and connections that may help you stand out in the application process.
We think you need these skills to ace GCP Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your extensive hands-on experience with GCP security services. Include specific examples of your work in threat modelling and your familiarity with DevSecOps principles.
Craft a Strong Cover Letter: In your cover letter, emphasise your ability to design and implement security controls across GCP services. Mention your experience collaborating with engineering teams and how you integrate security best practices into CI/CD pipelines.
Highlight Relevant Certifications: If you have a CISSP certification or equivalent experience in cloud security, make sure to prominently feature this in your application. This will demonstrate your commitment to the field and your qualifications for the role.
Showcase Your Problem-Solving Skills: Provide examples of how you've monitored and responded to security incidents in previous roles. This will illustrate your proactive approach to security and your ability to handle vulnerabilities effectively.
How to prepare for a job interview at Norton Blake
✨Showcase Your GCP Expertise
Make sure to highlight your hands-on experience with Google Cloud Platform security services. Be prepared to discuss specific projects where you've implemented security controls and how you approached threat modelling.
✨Demonstrate DevSecOps Knowledge
Since the role requires a solid understanding of DevSecOps principles, be ready to explain how you've integrated security best practices into CI/CD pipelines in your previous roles. Share examples that illustrate your experience in secure software development life cycles.
✨Prepare for Technical Questions
Expect technical questions related to GCP services, threat modelling, and data access governance. Brush up on Google BigQuery and SQL, as well as any relevant compliance frameworks, to ensure you can answer confidently.
✨Ask Insightful Questions
At the end of the interview, ask questions that show your interest in the company's security transformation programme. Inquire about their current challenges in securing cloud infrastructure or how they measure the success of their security initiatives.